Zum Inhalt springen
PodcastsComedySmashing Security

Smashing Security

Graham Cluley
Smashing Security
Neueste Episode

489 Episoden

  • Smashing Security

    Clippy's crypto comeback

    07.10.2026 | 58 Min.
    Microsoft's Twitter account, with its 13 million followers, was hijacked by a paperclip. There was no ransomware or data theft, just Clippy, a dodgy crypto coin, and a corporate apology that wasn't from Microsoft either.
    Meanwhile, UK losses from hacked email and social media accounts have rocketed by 417%, as scammers pose as your friends to flog you tickets to gigs that don't exist.
    Plus, Hack The Box's Christine Bartlett joins us for a featured interview to ask what happens when AI agents join your security team, and whether anyone has thought to give them a performance review.
    All this and more in episode 487 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Danny Palmer.

    EPISODE LINKS:
    South Korean officials believe AI agents were used to hack several banks - The Record.
    Asos warns customer data may be compromised after ‘unauthorised’ app access - The Guardian.
    PixelLeak AI exposure of private developer data - Glow.
    Crypto Scammers Hijack Microsoft's Official X Account - SecurityWeek.
    Is everything ok Microsoft? - The Verge.
    Switch to passkeys: Report Fraud warning as email and social media account hacking sums stolen rise by more than 400 per cent - City of London police.
    Swiss railway clock - Wikipedia.
    The Witcher 3: Wild Hunt Remastered Trailer - YouTube.
    Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

    SPONSORS:
    Hack The Box - Develop, exercise and measure the capabilities of your human operators and AI agents.
    Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!
    Origin - Endpoint AI observability. Put your AI agent on the record, and request a demo.

    SUPPORT THE SHOW:
    Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.
    Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed!

    FOLLOW THE SHOW:
    Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes.

    THANKS:
    Theme tune: "Vinyl Memories" by Mikael Manvelyan.
    Assorted sound effects: AudioBlocks.

    Privacy & Opt-Out: https://redcircle.com/privacy
  • Smashing Security

    Vibe-coded shops, and hackable Flock cameras

    23.09.2026 | 40 Min.
    A store in Auckland vibe-coded itself a new website. Within hours, its inventory had somehow expanded to include a pair of crusty socks, an $850 banana, and all of New Zealand's national parks. What could possibly have gone wrong?
    Meanwhile, a hacker collective backed a truck into one of the license-plate-reading Flock safety cameras popping up on American street corners, and took a very close look inside.
    All this and more in episode 486 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Dave Bittner.

    EPISODE LINKS:
    Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws - The Hacker News.
    Odido hackers mock police, threaten another Netherlands hack - Cybernews.
    North Korea's fake job interviews infected 30,000 devices - The Register.
    Ridiculous deals as store leaves website open for the public to edit - Stuff.
    Critical Vulnerability in AI Vibe Coding platform Base44 - Wiz.
    Beautiful People: The dating site that FAKED getting hacked by a virus called Shrek - Graham Cluley on YouTube.
    Flock Camera Locations - Live Map of 150,000+ Flock Safety Cameras & ALPRs.
    Flock cameras are riddled with security vulnerabilities and hard-coded credentials - Micah Flee.
    Creve Coeur police in 'state of chaos' as former chief investigated for misconduct - WCBU Peoria.
    La La Land Filming Locations - Seeing Stars.
    Mrs Mills - Wikipedia.
    Let's Have a Party - The Piano Genius of Mrs. Mills - YouTube.
    Introducing the Originals Mrs Mills Piano from Abbey Road Studios & Spitfire Audio - Abbey Road.
    Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

    SPONSORS:
    Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!
    Origin - Endpoint AI observability. Put your AI agent on the record, and request a demo.
    ThreatLocker - Book a demo today and start securing your organisation.

    SUPPORT THE SHOW:
    Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.
    Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed!

    FOLLOW THE SHOW:
    Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes.

    THANKS:
    Theme tune: "Vinyl Memories" by Mikael Manvelyan.
    Assorted sound effects: AudioBlocks.

    Privacy & Opt-Out: https://redcircle.com/privacy
  • Smashing Security

    These researchers got drunk to hack an LG TV

    16.09.2026 | 1 Std. 2 Min.
    Researchers wanted to test if LG's smart TVs come with any security risks - but their lawyers noticed a snag: the terms and conditions would forbid it. So they came up with a solution. They got plastered before setting up the TV, on the reasoning that you can't be legally bound to a contract you agreed to while drunk. What they discovered will make you look at your TV rather differently...
    Meanwhile, awful Android malware with the audacious name "Awesome" (in Indonesian) is doing the rounds, stealing your data, demanding a ransom, and then giving you a "jump scare"...
    Plus, in our featured interview, Andy Hornegold of Intruder explains why the mid-market is where cybercriminals are having the most fun right now - and how AI is helping attackers get from "first foot in the door" to "full ransomware disaster" in less than a working day.
    All this and more in episode 485 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Lianne Potter.

    EPISODE LINKS:
    Revolut handed customer data to fraudsters using government email account - The Record.
    HBO Max Reddit account compromised to serve ClickFix attacks - The Register.
    U.S. and UK Launch First-of-Its-Kind Joint Alliance to Dismantle Global Scam Centers - US Dept of Justice.
    216,000,000 Spy TVs - The LG Smart TV Problem - YouTube.
    LG TVs Are Capable of Listening to More Than Your Screen, Report Claims - Gizmodo.
    New Android malware encrypts files, steals data, and harasses victims - Bleeping Computer.
    Search flags based on colors and attributes - FlagLookup.
    Killer In The Code podcast.
    Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

    SPONSORS:
    ThreatLocker - Book a demo today and start securing your organisation.
    Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!
    Intruder - The depth of a manual pentest, on-demand. Start an AI pentest in minutes - 25% off your first pentest for Smashing Security listeners.

    SUPPORT THE SHOW:
    Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.
    Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed!

    FOLLOW THE SHOW:
    Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes.

    THANKS:
    Theme tune: "Vinyl Memories" by Mikael Manvelyan.
    Assorted sound effects: AudioBlocks.

    Privacy & Opt-Out: https://redcircle.com/privacy
  • Smashing Security

    How websites are tracking you with silence

    09.09.2026 | 45 Min.
    When a chap called Matt noticed his Bluetooth headphones wouldn't switch to his phone, he was surprised to realise the reason was a single AliExpress webpage sitting open in his browser - playing nothing at all, at zero volume. And yet somehow his hardware could hear it. Audio fingerprinting is one of the sneakiest tracking tricks on the web.
    Meanwhile, the intelligence agencies of the "Five Eyes" (not Five Guys) have got together and published advice on how companies should communicate after a cyber attack. The summary? For the love of God, stop calling every breach "sophisticated."
    All this and more in episode 484 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Danny Palmer.

    EPISODE LINKS:
    Hackers demand $2.3M in ransom after breaching Berlin government network - Anadolu.
    Deux suspects interpellés dans le cadre des enquêtes ouvertes après le piratage du fisc - France Info.
    Hackers are stealing Claude tokens from subscribers - TechCrunch.
    AliExpress accused of fingerprinting shoppers with silent audio trick that also muted a dev's headphones - The Register.
    AliExpress webpage keeping multipoint Bluetooth headphones active with WebAudio fingerprinting - Matt Callaghan’s blog.
    Audio Fingerprinting: What It Is + How It Works with Web API - Fingerprint.
    Communicating Under Pressure: Best Practices for Service Providers - CISA.
    World Stone Skimming Championships.
    Mind games and a ‘toss master’: world stone skimming contest returns to Scotland after cheating scandal - The Guardian.
    World Stone Skimming Championships - Every Toss 2025 - YouTube.
    ”The Pirates’ Code: Laws and Life Aboard Ship”  by Rebecca Simon - Waterstones.
    Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

    SPONSORS:
    ThreatLocker - Book a demo today and start securing your organisation.
    Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!
    Intruder - The depth of a manual pentest, on-demand. Start an AI pentest in minutes - 25% off your first pentest for Smashing Security listeners.

    SUPPORT THE SHOW:
    Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.
    Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed!

    FOLLOW THE SHOW:
    Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes.

    THANKS:
    Theme tune: "Vinyl Memories" by Mikael Manvelyan.
    Assorted sound effects: AudioBlocks.

    Privacy & Opt-Out: https://redcircle.com/privacy
  • Smashing Security

    This AI helps thieves steal your iPhone

    02.09.2026 | 44 Min.
    You've had your iPhone stolen. A day later, you get a text from Apple saying they've found it, and a very helpful woman called Alice from Apple Support calls to walk you through recovering it. She's polite. She's professional. But she is not from Apple. She's not even human. And she's about to break into your iPhone.
    Meanwhile, OpenAI, Anthropic, and Meta have all announced - with varying degrees of drama - that their AI agents have "broken out of the sandbox" and gone hacking. James takes a step back and asks the awkward question: is this really an emergent AI apocalypse, or did they just leave the door open?
    All this and more in episode 483 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest James Ball.

    EPISODE LINKS:
    Hacker leaks GTA VI footage to push a crypto token before pulling off a $270,000 cash-out - Coindesk.
    ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions - The Hacker News.
    FulcrumSec claims Manchester Airports hack, theft of 86 GB of data - Bleeping Computer.
    Mugged for my phone, then locked out of my life - The Times.
    Exposing AnonyMousKIT: AI-Powered PhaaS Supply Chain - SOCRadar.
    AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes - Bleeping Computer.
    Investigating three real-world incidents in our cybersecurity evaluations - Anthropic.
    The Hugging Face incident and the road ahead - OpenAI.
    Irregular says ‘human oversight’ responsible for AI sandbox escape incidents - CyberScoop.
    Control. Ownership. Perspective - Ciaran Martin.
    Steno: Highly-Secure AI Notetaker for Government & Defence - Steno.
    Inside the Factory - BBC.
    Smashing Security merchandise (t-shirts, mugs, stickers and stuff)

    SPONSORS:
    ThreatLocker - Book a demo today and start securing your organisation.
    Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!
    Intruder - The depth of a manual pentest, on-demand. Start an AI pentest in minutes - 25% off your first pentest for Smashing Security listeners.

    SUPPORT THE SHOW:
    Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.
    Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed!

    FOLLOW THE SHOW:
    Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes.

    THANKS:
    Theme tune: "Vinyl Memories" by Mikael Manvelyan.
    Assorted sound effects: AudioBlocks.

    Privacy & Opt-Out: https://redcircle.com/privacy
Weitere Comedy Podcasts
Über Smashing Security
Stories from the world of hacking, cybersecurity, and rogue AI.Smashing Security isn’t your typical tech podcast. Hosted by cybersecurity keynote speaker and industry veteran Graham Cluley, it serves up weekly tales of cybercrime, hacking horror stories, privacy blunders, and tech mishaps - all with sharp insight, a sense of humour, and zero tolerance for tech waffle.Winner of the best and most entertaining cybersecurity podcast awards in 2018, 2019, 2022, 2023, and 2024, Smashing Security has had over ten million downloads. Past guests include Garry Kasparov, Mikko Hyppönen, and Jack Rhysider.Follow the podcast on Bluesky at @smashingsecurity.com, and subscribe for free in your favourite podcast app.New episodes released at 7pm EST every Wednesday (midnight UK).
Podcast-Website

Höre Smashing Security, Mit den Waffeln einer Frau und viele andere Podcasts aus aller Welt mit der radio.de-App

Hol dir die kostenlose radio.de App

  • Sender und Podcasts favorisieren
  • Streamen via Wifi oder Bluetooth
  • Unterstützt Carplay & Android Auto
  • viele weitere App Funktionen
Rechtliches
Social
v8.23.3 | © 2007-2026 radio.de GmbH
Generated: 10/8/2026 - 9:56:12 PM